Lucene search

K
patchstackClaudio VivianiPATCHSTACK:67D2BB861F517C57FEBE82DA77D8C8F7
HistoryNov 05, 2014 - 12:00 a.m.

WordPress Compfight Plugin <= 1.4 - XSS

2014-11-0500:00:00
Claudio Viviani
patchstack.com
3

EPSS

0.001

Percentile

40.5%

This vulnerability is in the compfight-search.php. It allows authenticated users to inject arbitrary web script or HTML via the β€œsearch-value” parameter.

Solution

           Update the plugin. 

EPSS

0.001

Percentile

40.5%

Related for PATCHSTACK:67D2BB861F517C57FEBE82DA77D8C8F7